CVE-2026-4252: Tenda AC8 IPv6 check_is_ipv6 ip address for authentication
A vulnerability was identified in Tenda AC8 16.03.50.11. Affected by this issue is the function checkisipv6 of the component IPv6 Handler. The manipulation leads to reliance on ip address for authentication. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4252?
The severity of CVE-2026-4252 is classified as a medium risk due to its potential impact on authentication processes.
How do I fix CVE-2026-4252?
To fix CVE-2026-4252, update the Tenda AC8 firmware to the latest version provided by the vendor.
What are the potential consequences of CVE-2026-4252?
The potential consequences of CVE-2026-4252 include unauthorized access to the device by manipulating IPv6 address authentication.
Which devices are affected by CVE-2026-4252?
CVE-2026-4252 affects the Tenda AC8 device running firmware version 16.03.50.11.
Is there a workaround for CVE-2026-4252?
Currently, there are no documented workarounds for CVE-2026-4252 other than applying the firmware update.